Skip to content
This repository was archived by the owner on Jan 7, 2026. It is now read-only.
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
14 changes: 13 additions & 1 deletion apache-pulsar.advisories.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -46,7 +46,7 @@ advisories:
- timestamp: 2026-01-02T09:30:04Z
type: pending-upstream-fix
data:
note: 'Bumping to fix version of log4j-core causes build failures due to missing classes. Upstream maintainers must implement compatibility to remediate.'
note: Bumping to fix version of log4j-core causes build failures due to missing classes. Upstream maintainers must implement compatibility to remediate.

- id: CGA-9gfp-hc4v-798r
aliases:
Expand Down Expand Up @@ -201,6 +201,18 @@ advisories:
type: fixed
data:
fixed-version: 4.1.2-r2
- timestamp: 2026-01-07T11:09:08Z
type: detection
data:
type: scan/v1
data:
subpackageName: apache-pulsar
componentID: 71e0b1ec8116f4f7
componentName: jose4j
componentVersion: 0.9.5
componentType: java-archive
componentLocation: /usr/share/java/pulsar/lib/org.bitbucket.b_c-jose4j-0.9.5.jar
scanner: grype

- id: CGA-mxg5-5rwg-w4hr
aliases:
Expand Down
Loading